Adware.NDotNet Adware

Virus description: Adware.NDotNet
Category:Adware,Spyware,Hijacker
Another names:

[McAfee]Adware-NDotNet

Adware.NDotNet Detection :

Files:
[%PROFILE%]\NNSKYA638.exe
[%PROFILE_TEMP%]\NNCLXA638.EXE
[%PROGRAM_FILES%]\NewDotNet\newdotnet3_88.dll
[%PROGRAM_FILES%]\NewDotNet\newdotnet6_38.dll
[%PROGRAM_FILES%]\NewDotNet\newdotnet6_98.dll
[%PROGRAM_FILES%]\NewDotNet\newdotnet7_22.dll
[%PROGRAM_FILES%]\NewDotNet\newdotnet7_48.dll
[%PROGRAM_FILES%]\NewDotNet\nncore.dll
[%PROGRAM_FILES%]\NewDotNet\nnrun.exe
[%PROGRAM_FILES%]\NewDotNet\uninstall.exe
[%PROGRAM_FILES%]\NewDotNet\uninstall6_38.exe
[%PROGRAM_FILES%]\NewDotNet\uninstall7_22.exe
[%PROGRAM_FILES%]\NewDotNet\uninstall7_48.exe
[%PROGRAM_FILES%]\NEWDOT~1\NEWDOT~1.DLL
[%PROGRAM_FILES%]\NEWDOT~1\NEWDOT~2.DLL
[%PROGRAM_FILES%]\themexp\Themexp.org File\INSTALL.LOG
[%PROGRAM_FILES%]\themexp\Themexp.org File\NNWDAB638.EXE
[%PROGRAM_FILES%]\themexp\Themexp.org File\UNWISE.EXE
[%PROGRAM_FILES%]\themexp\Themexp.org File\UNWISE.INI
[%WINDOWS%]\NDNuninstall6_38-1.exe
[%WINDOWS%]\NDNuninstall6_38.exe
[%WINDOWS%]\NDNuninstall6_90.exe
[%WINDOWS%]\NDNuninstall6_98.exe
[%WINDOWS%]\NDNuninstall7_22-1.exe
[%WINDOWS%]\ndnuninstall7_22.exe
[%WINDOWS%]\NDNuninstall7_44.exe
[%WINDOWS%]\NDNuninstall7_48-1.exe
[%WINDOWS%]\NDNuninstall7_48.exe
[%PROFILE%]\NNSKYA638.exe
[%PROFILE_TEMP%]\NNCLXA638.EXE
[%PROGRAM_FILES%]\NewDotNet\newdotnet3_88.dll
[%PROGRAM_FILES%]\NewDotNet\newdotnet6_38.dll
[%PROGRAM_FILES%]\NewDotNet\newdotnet6_98.dll
[%PROGRAM_FILES%]\NewDotNet\newdotnet7_22.dll
[%PROGRAM_FILES%]\NewDotNet\newdotnet7_48.dll
[%PROGRAM_FILES%]\NewDotNet\nncore.dll
[%PROGRAM_FILES%]\NewDotNet\nnrun.exe
[%PROGRAM_FILES%]\NewDotNet\uninstall.exe
[%PROGRAM_FILES%]\NewDotNet\uninstall6_38.exe
[%PROGRAM_FILES%]\NewDotNet\uninstall7_22.exe
[%PROGRAM_FILES%]\NewDotNet\uninstall7_48.exe
[%PROGRAM_FILES%]\NEWDOT~1\NEWDOT~1.DLL
[%PROGRAM_FILES%]\NEWDOT~1\NEWDOT~2.DLL
[%PROGRAM_FILES%]\themexp\Themexp.org File\INSTALL.LOG
[%PROGRAM_FILES%]\themexp\Themexp.org File\NNWDAB638.EXE
[%PROGRAM_FILES%]\themexp\Themexp.org File\UNWISE.EXE
[%PROGRAM_FILES%]\themexp\Themexp.org File\UNWISE.INI
[%WINDOWS%]\NDNuninstall6_38-1.exe
[%WINDOWS%]\NDNuninstall6_38.exe
[%WINDOWS%]\NDNuninstall6_90.exe
[%WINDOWS%]\NDNuninstall6_98.exe
[%WINDOWS%]\NDNuninstall7_22-1.exe
[%WINDOWS%]\ndnuninstall7_22.exe
[%WINDOWS%]\NDNuninstall7_44.exe
[%WINDOWS%]\NDNuninstall7_48-1.exe
[%WINDOWS%]\NDNuninstall7_48.exe

Folders:
[%PROGRAM_FILES%]\Mozilla Firefox\extensions\{AF8637B0-18E3-44D3-86B7-55E09D9C4261}
[%PROGRAM_FILES%]\newdotnet

Registry Keys:
HKEY_CLASSES_ROOT\CLSID\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E}
HKEY_CLASSES_ROOT\tldctl2.urllink
HKEY_CLASSES_ROOT\tldctl2.urllink.1
HKEY_CURRENT_USER\software\new.net
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\new.net
HKEY_LOCAL_MACHINE\software\new.net
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_nnserv
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\nnserv
HKEY_CLASSES_ROOT\clsid\{4a2aacf3-adf6-11d5-98a9-00e018981b9e}
HKEY_CLASSES_ROOT\clsid\{dd521a1d-1f98-11d4-9676-00e018981b9e}
HKEY_CLASSES_ROOT\interface\{4a2aacf1-adf6-11d5-98a9-00e018981b9e}
HKEY_CLASSES_ROOT\interface\{dd521a1c-1f98-11d4-9676-00e018981b9e}
HKEY_CLASSES_ROOT\tldctl2.tldctl2c
HKEY_CLASSES_ROOT\tldctl2.tldctl2c.1
HKEY_CLASSES_ROOT\typelib\{dd521a10-1f98-11d4-9676-00e018981b9e}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{dd521a1d-1f98-11d4-9676-00e018981b9e}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{4a2aacf3-adf6-11d5-98a9-00e018981b9e}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\[%WINDOWS%]\downloaded program files\tldctl2.ocx
HKEY_LOCAL_MACHINE\software\tldctl2

Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\winsock2\parameters\namespace_catalog5\catalog_entries\000000000004
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\winsock2\parameters\namespace_catalog5\catalog_entries\000000000004
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\winsock2\parameters\namespace_catalog5\catalog_entries\000000000004
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\winsock2\parameters\namespace_catalog5\catalog_entries\000000000004

Removing Adware.NDotNet:

you can run trial version of ExterminateIt, or remove Adware.NDotNet manually..


ExterminateIt effectively and automatically removes Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware) from you computer.

Download ExterminateIt! to instantly get rid of Adware.NDotNet!


Also Be Aware of the Following Threats:
Adware.Henbang Adware Information
Adload.ae Downloader Information
adaos.ads.net Tracking Cookie Removal instruction
Remove 180Solutions.Zango Spyware
Ad.Logics Tracking Cookie Removal